<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Priya Chalakkal on Insinuator.net - Bold Statements</title>
    <link>https://insinuator.net/authors/priya-chalakkal/</link>
    <description>Recent content in Priya Chalakkal on Insinuator.net - Bold Statements</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Mon, 27 Jan 2020 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://insinuator.net/authors/priya-chalakkal/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Blackhoodie@Troopers 2020</title>
      <link>https://insinuator.net/2020/01/blackhoodie@troopers-2020/</link>
      <pubDate>Mon, 27 Jan 2020 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2020/01/blackhoodie@troopers-2020/</guid>
      <description>&lt;p&gt;Once again, we are super excited to announce that Blackhoodie is happening at Troopers 2020. This is the 3rd time that Blackhoodie is joining with Troopers. As always, one of the main motivation for Blackhoodie is bringing more women into reversing and other core security topics. So we would like to see more women apply to the training slots. However, if you are not a woman and still feel really excited about Blackhoodie, you are welcome to apply. The registration is open now.  Please hurry up and make your registration now. We will close the registration once the seats are filled up with enough quality submissions. We do have a very limited number of seats at this training site. So we apologize in advance if we can’t accommodate everyone, even though we wish we could!&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2020 CFP is open</title>
      <link>https://insinuator.net/2019/09/telcosecday-2020-cfp-is-open/</link>
      <pubDate>Mon, 23 Sep 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/09/telcosecday-2020-cfp-is-open/</guid>
      <description>&lt;p&gt;We are back again with another &lt;a href=&#34;https://troopers.de/troopers20/telco-sec-day/&#34;&gt;TelcoSecDay 2020&lt;/a&gt; (TSD20) which is going to happen on March 16th, 2020 as an additional event to &lt;a href=&#34;https://troopers.de/&#34;&gt;TROOPERS&lt;/a&gt;. This year, it is going to be on &lt;strong&gt;Monday&lt;/strong&gt; of the TROOPERS week. We are delighted to inform that the event is happening for the 9th year in a row. The &lt;a href=&#34;https://cfp.ernw-insight.de/tsd20/cfp&#34;&gt;CFP&lt;/a&gt; is open now. If you have an interesting topic related to the field of Telco Security, please make a submission. The deadline is &lt;strong&gt;November 17, 2019.&lt;/strong&gt; The final notification for TSD submission is December 20, 2019.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Binaries, shellcoding, bug hunting, ROP gadgets and more at Blackhoodie@TR19</title>
      <link>https://insinuator.net/2019/03/binaries-shellcoding-bug-hunting-rop-gadgets-and-more-at-blackhoodie@tr19/</link>
      <pubDate>Fri, 01 Mar 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/03/binaries-shellcoding-bug-hunting-rop-gadgets-and-more-at-blackhoodie@tr19/</guid>
      <description>&lt;p&gt;We have the most amazing trainers this year lined up for Blackhoodie at Troopers 2019. We have &lt;a href=&#34;https://twitter.com/barbieauglend&#34;&gt;Thais&lt;/a&gt;, &lt;a href=&#34;https://twitter.com/SilviaValiSV&#34;&gt;Silvia&lt;/a&gt;, &lt;a href=&#34;https://twitter.com/chiliz16&#34;&gt;Lisa&lt;/a&gt; and &lt;a href=&#34;https://twitter.com/__noutoff__&#34;&gt;Ninon&lt;/a&gt; going to give workshops on various interesting topics! Below are some of the workshop contents:&lt;/p&gt;&#xA;&lt;h3 id=&#34;64-bit-shellcoding-and-introduction-to-buffer-overflow-exploitation-on-linux-by-silvia-väli&#34;&gt;64-bit shellcoding and introduction to buffer overflow exploitation on Linux by &lt;a href=&#34;https://twitter.com/SilviaValiSV&#34;&gt;Silvia Väli&lt;/a&gt;&lt;/h3&gt;&#xA;&lt;p&gt;64-bit shellcoding and introduction to buffer overflow exploitation on Linux is a 3 hour workshop which is essentially divided into 3 parts:&lt;/p&gt;&#xA;&lt;ol&gt;&#xA;&lt;li&gt;Introduction to 64-bit architecture in order to get familiar with registers, stack, calling conventions described in the Intel 64 (x86-64) architecture manual and the most common assembly instructions and syscalls which we will later use to write our shellcodes.&lt;/li&gt;&#xA;&lt;li&gt;Shellcoding where we try different techniques to write the shellcode and of course you gonna get to greet the shellcoding world with your own Hello World shellcode in addition to reverse shell which we will use later on in part 3&lt;/li&gt;&#xA;&lt;li&gt;Introduction to buffer overflows, so you can put your newly received know-how about stack into practise right away. Shellcode without being used is a wasted shellcode! Part 3 ends with a buffer overflow challenge where your goal is to use your reverse shellcode to get a connection back to your machine.&lt;/li&gt;&#xA;&lt;/ol&gt;&#xA;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2019 – First talks preview</title>
      <link>https://insinuator.net/2019/01/telcosecday-2019-first-talks-preview/</link>
      <pubDate>Tue, 29 Jan 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/01/telcosecday-2019-first-talks-preview/</guid>
      <description>&lt;p&gt;This year we had some excellent submissions for TelcoSecDay.  Here are the first four confirmed speakers who are going to talk about the below mentioned topics:&lt;/p&gt;&#xA;&lt;h4 id=&#34;1-telecom-protocols-revisited--not-just-a-signalling-problem--by-fredrik-söderlund&#34;&gt;&lt;strong&gt;1. Telecom protocols revisited – Not just a signalling problem – by Fredrik Söderlund&lt;/strong&gt;&lt;/h4&gt;&#xA;&lt;p&gt;A look at the design of the currently deployed signalling protocols for core networks, both SS7 and Diameter (legacy and LTE). Peculiar quirks and how the design has lead to the industry sometimes failing to adhere to its own standards.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Blackhoodie at TROOPERS19</title>
      <link>https://insinuator.net/2019/01/blackhoodie-at-troopers19/</link>
      <pubDate>Fri, 04 Jan 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/01/blackhoodie-at-troopers19/</guid>
      <description>&lt;p&gt;We are going to have a &lt;a href=&#34;https://insinuator.net/tag/blackhoodie/&#34;&gt;Blackhoodie event&lt;/a&gt; at &lt;a href=&#34;https://www.troopers.de/&#34;&gt;Troopers 2019&lt;/a&gt; on March 18th and 19th in Heidelberg. With a very exciting event last year, we have decided to roll it once again during Troopers.&lt;/p&gt;&#xA;&lt;p&gt;As always, one of the main motivation for &lt;a href=&#34;https://www.blackhoodie.re/about/&#34;&gt;Blackhoodie&lt;/a&gt; is bringing more women into reversing and other core security topics. So we would like to see more women apply to the training slots. However, if you are not a women and still feel really excited about Blackhoodie, you are welcome to apply. We do have a very limited number of seats at this training site. So we apologize in advance if we can’t accommodate everyone, even though we wish we could! Please apply before &lt;strong&gt;“February 10th”&lt;/strong&gt; and we will contact you regarding next steps.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Diversity, Community, Blackhoodie</title>
      <link>https://insinuator.net/2018/07/diversity-community-blackhoodie/</link>
      <pubDate>Thu, 26 Jul 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/07/diversity-community-blackhoodie/</guid>
      <description>&lt;p&gt;Gender equality in the Infosec world as a topic of discussion comes with a lot of heated arguments and differences in opinion.&lt;br&gt;&#xA;So let me start with some disclaimers on the target audience for this post. If you are in the category who believes everything about gender is perfect in the infosec world, this post is not for you. If you are in the category who believes gender and bringing diversity is not your area of interest, then this post is not for you either. There are so many interesting problems that the world offers you. Climate change, poverty, diseases, unemployment, addiction, science problems and what not. Everybody has the freedom to choose their area of interest and contribute towards it. If you are in the category who thinks gender equality in infosec needs some attention and would like to explore more on the topic without prejudices, then this post may  be interesting to you.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2018 – Talks Part2</title>
      <link>https://insinuator.net/2018/02/telcosecday-2018-talks-part2/</link>
      <pubDate>Mon, 26 Feb 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/02/telcosecday-2018-talks-part2/</guid>
      <description>&lt;p&gt;We have the next set of selected talks being announced here. I am super excited about the variety of applications we had this year. Here are some of the talks we will have.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Title: From LoRa technology to deployment within Orange affiliates&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;&lt;em&gt;Speakers: Franck L’Hereec and  Albert Nguyen&lt;/em&gt;&lt;/p&gt;&#xA;&lt;p&gt;Just deployed, the LoRa technology has already passed into the hands of hackers who have analyzed the LoRaWAN protocol as well as the objects and gateways that implement it. At Orange, Orange Labs’ security experts have therefore looked into those issues, first to understand it better, and also ensure the network’s deployment in optimal security conditions. Demonstration via the example of the treatment of the security of an innovation project by Orange. During the presentation we will present :&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2018 – CFP and First talks</title>
      <link>https://insinuator.net/2018/02/telcosecday-2018-cfp-and-first-talks/</link>
      <pubDate>Thu, 08 Feb 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/02/telcosecday-2018-cfp-and-first-talks/</guid>
      <description>&lt;p&gt;We have a short update from the TelcoSecDay 2018 Agenda. But before that, a short reminder. The CFP for TelcoSecDay 2018 is still open. If you are into telco research, and if you have something interesting to talk, please make a submission &lt;a href=&#34;https://cfp.ernw-insight.de/tsd18/&#34;&gt;here&lt;/a&gt;. The deadline is &lt;strong&gt;17th February 2018.&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Here are the first two confirmed speakers who are going to talk about the below mentioned topics:&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Title: Data Security for 4G Interconnection and 5G Interconnection Risk Areas&lt;/strong&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hacking 101 to mobile data</title>
      <link>https://insinuator.net/2018/02/hacking-101-to-mobile-data/</link>
      <pubDate>Tue, 06 Feb 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/02/hacking-101-to-mobile-data/</guid>
      <description>&lt;p&gt;Here is a short blog post that explains how you can make your own Man-in-the-Middle (MitM) setup for sniffing the traffic between a SIM card and the backend server. This is** NOT a new research** but I hope this will help anyone who doesn’t have a telco background to get started to play with mobile data sniffing and fake base stations. This is applicable to many scenarios today as we have so many IoT devices with SIM cards in it that connects to the backend.&lt;br&gt;&#xA;In this particular case, I am explaining the simplest scenario where the SIM card is working with 2G and GPRS. You can probably expect me with more articles with 3G, 4G MitM in future. But lets stick to 2G and GPRS for now.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Blackhoodie at TROOPERS18</title>
      <link>https://insinuator.net/2018/02/blackhoodie-at-troopers18/</link>
      <pubDate>Fri, 02 Feb 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/02/blackhoodie-at-troopers18/</guid>
      <description>&lt;p&gt;We are thrilled to announce the &lt;a href=&#34;https://insinuator.net/tag/blackhoodie/&#34;&gt;Blackhoodie event&lt;/a&gt; at &lt;a href=&#34;https://www.troopers.de/&#34;&gt;Troopers 2018&lt;/a&gt; on March 12th and 13th in Heidelberg. This time it is going to be a 2 day workshop with various interesting topics related to reverse engineering. We will make sure that you get some hands on experience with reversing and more.&lt;/p&gt;&#xA;&lt;p&gt;As always, one of the main motivation for &lt;a href=&#34;https://www.blackhoodie.re/about/&#34;&gt;Blackhoodie&lt;/a&gt; is bringing more women into reversing.&lt;br&gt;&#xA;So we would like to see more women apply to the training slots. However, we are open to everyone who would like to apply. We do have a very limited number of seats at this training site. So we apologize in advance if we can’t accommodate everyone, even though we wish we could! Please apply before &lt;strong&gt;“February 20th”&lt;/strong&gt; and we will contact you regarding next steps.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Yet another edition of BlackHoodie – #BlackHoodie17</title>
      <link>https://insinuator.net/2017/12/yet-another-edition-of-blackhoodie-%23blackhoodie17/</link>
      <pubDate>Mon, 11 Dec 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/12/yet-another-edition-of-blackhoodie-%23blackhoodie17/</guid>
      <description>&lt;p&gt;I am amazed by how this years &lt;a href=&#34;https://www.blackhoodie.re/&#34;&gt;BlackHoodie&lt;/a&gt; unraveled. Three days that included a pre-conference of lightening talks and two parallel tracks with a total of 64 enthusiastic members. The very spirit of &lt;a href=&#34;https://www.blackhoodie.re/&#34;&gt;BlackHoodie&lt;/a&gt; is nothing other than the quest to gain deep knowledge. Reverse engineering is one of the hardest fields in security. It touches on all fields of computing, starting from assembly, programming, file formats, operating systems, networks and what not. This makes it hard but an extremely fulfilling experience to spend time learning it. For me, the very idea of staring at a binary till you understand what it does is a magical feeling.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Daycon X1</title>
      <link>https://insinuator.net/2017/10/daycon-x1/</link>
      <pubDate>Wed, 04 Oct 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/10/daycon-x1/</guid>
      <description>&lt;p&gt;This is my short write up on &lt;a href=&#34;http://day-con.org/styled/&#34;&gt;Daycon X1&lt;/a&gt;, 2017.  The summit was held at Dayton, the land where &lt;a href=&#34;https://en.wikipedia.org/wiki/Wright_brothers&#34;&gt;Wright brothers&lt;/a&gt; were born. Apart from being my first US trip, I also gave my first training on Hacking 101 also called the Bootcamp.&lt;/p&gt;&#xA;&lt;p&gt;The Daycon X1  bootcamp started on 18th September. Ahmad, my colleague focused on web security, network scanning and metasploit exercises. I mainly handled classes on reversing and binary exploitation along with some pcap anaylsis and network attacks. It was highly fulfilling  experience to give a workshop. Teaching is definitely the best way to learn any topic by digging deep into it.The simpler you can explain, the more clarity you have on the topic. But I must say that it was indeed exhausting by the end of three days.&lt;/p&gt;</description>
    </item>
    <item>
      <title>BlackHoodie 2016</title>
      <link>https://insinuator.net/2016/11/blackhoodie-2016/</link>
      <pubDate>Mon, 21 Nov 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/11/blackhoodie-2016/</guid>
      <description>&lt;p&gt;This year’s &lt;a href=&#34;http://0x1338.blogspot.de/2016/06/that-thing-with-rocking-harder-and.html&#34;&gt;BlackHoodie&lt;/a&gt; workshop rolled out with 28 amazing women from all parts of the world. It was a very vibrant group with students, professionals, engineers, researchers, physicists and what not. This is the second year that &lt;a href=&#34;https://twitter.com/pinkflawd&#34;&gt;Marion Marschalek&lt;/a&gt; is running this reverse engineering workshop exclusively for women. There were a variety of topics that were covered. This includes anti emulation tricks, anti debuggers, packers, obfuscation, encryption/decryption functions, and a lot of fun with IDA.&lt;/p&gt;</description>
    </item>
    <item>
      <title>A Journey Into the Depths of VoWiFi Security</title>
      <link>https://insinuator.net/2016/10/a-journey-into-the-depths-of-vowifi-security/</link>
      <pubDate>Thu, 20 Oct 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/10/a-journey-into-the-depths-of-vowifi-security/</guid>
      <description>&lt;p&gt;T-mobile pioneered with the native seamless support for WiFi calling technology embedded within the smartphones. This integrated WiFi calling feature is adopted by most major providers as well as many smartphones today. T-mobile introduced VoWiFi in Germany in May 2016. You can make voice calls that allows to switch between LTE and WiFi networks seamlessly. This post is going to be about security analysis of Voice over WiFi (VoWiFi), another name for WiFi calling, from the user end. Before we get started, let me warn you in advance. If you are not familiar with telecommunication network protocols, then you might get lost in the heavy usage of acronyms and abbreviations. I am sorry about that. But trust me, after a while, you get used to it 🙂 .&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
